Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DNS in 2000 domain and 2003 domain NOT working 1

Status
Not open for further replies.

ZipperHeadMan

IS-IT--Management
Apr 21, 2005
58
CA
I have 2 forrests - lets call them forrest1 and forrest2

I have 2 domain controllers - dc1 and dc2


In forrest1, I have dc1, which is a windows 2000 domain controller. It is the only server in the forrest.

In forrest2, I have dc2, which is a windows 2003 domain controller. It is the only server in the forrest.

I wish to trust these 2 forrests using a 2 way transistive trust. In order to do so, I must have dns configured so that name resolution works across the forrests (ie I can ping a netbios name from dc1 to dc2 and resolve it to an IP)

OK, ive read loads of guides, and searched the knowledge base articles and to be honest, I am more confused now than I was to begin with!

Ok, so I have created a new zone on each DNS server.

On dc1, I have created a new forward lookup zone for dc2
On dc2, I have created a new forward lookup zone for dc1

On dc1 (the windows 2000 box) the DC2 primary zone appears to be ok. I have also allowed zone transfers for its own zone to dc2.

On dc2 (the windows 2003 box) the dc1 zone has only static entries listed. When I go to the event log it says that zone transfers are not allowed - please enable them

Ive enabled zone transfers on both zones. Ive tried manually updated them via the GUI by "transfer from master"

So I have forward lookup zones created on both DC's - yet I am still unable to resolve any names over the network (ie dns isnt working!)

I know very little about DNS. So if any of you are able to give me some tips id be a happy man!

If you need any other info, let me know!
 
This can be done a lot easier than the way you are trying to do it.

Don't do zone transfers and secondary zones. Delete those additional zones you created. Just set up the Forwarding tab to refer queries about the other domain to the other DNS server. And configure the DNS on both servers with an additional DNS suffix so that if you only use the NetBIOS name (not the FQDN) the system will attempt to resolve the name by appending the remote domain's suffix.



ShackDaddy
Shackelford Consulting
 
Thanks for the input ShackDaddy.
Would you be able to elaborate on configuring the DNS servers with additional DNS suffix?

Lets say the following is true:

ServerA (2003) IP 172.15.100.X Domain : abcd.local
ServerB (2000) IP 192.168.10.X Domain : efgh.on.ca

Where and how would I input this data?
 
Go to the TCP/IP settings on each server and go to the DNS tab. You will see the DNS suffix list. You would add the OTHER domain's suffix "abcd.local" or "efgh.on.ca" to the suffix list. So both suffixes would be listed on each server's DNS suffix list.

You would also configure a custom forwarder in the Forwarders tab, so that on ServerA requests for "efgh.on.ca" domain records would be forwarded to 192.168.10.2, and so on.

ShackDaddy
Shackelford Consulting
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top